How To Unprotect Pdf Protected?

I have a PDF and when I try open it ask for a password, I tryed to crack it with several pdf crackers that I found in the internet (even the ones from Elcom software, PDFcracker, ...) and all without sucess.

Command-line based bruteforcer.Builds under Cygwin with no major problems,and works like a charm.
I had uploaded here in GSO a binary of an early version...check here:
hxxp://www.governmentsecurity.org/forum/index.php?showtopic=21514

I also had posted some binaries in the pdfcrack's forum itself...
hxxp://sourceforge.net/forum/forum.php?thread_id=1531079&forum_id=575586
And from what I see,there's more people posting cygwin-based binaries there ;-)

Then,read this nifty paper for an intro to PDF cryptography implementations:
hxxp://www.cs.cmu.edu/~dst/Adobe/Gallery/ds-defcon2/ds-defcon.html

Well,that's all...just make sure you read the aformentioned paper,
in order to be able to understand how to use pdfcrack...

"Maybe not today,maybe not tomorrow...but soon-and for the rest of your life"

Also, based on document appear that key search find is more reliable... do you know any tool that can do it (preferable in cluster - with support to share nodes) ?

Also, the key is a MD5, not? So the use of Rainbow Tables can't help in discover the key?

Thank you,

Cheers

hxxp://pdfcrack.sourceforge.net

Command-line based bruteforcer.Builds under Cygwin with no major problems,and works like a charm.I had uploaded here in GSO a binary of an early version...check here:hxxp://www.governmentsecurity.org/forum/index.php?showtopic=21514

I also had posted some binaries versions in the pdfcrack's forum itself...hxxp://sourceforge.net/forum/forum.php?thread_id=1531079&forum_id=575586And from what I see,there's more people posting cygwin-based binaries there ;-)

Then,read this nifty paper for an intro to PDF cryptography implementations:hxxp://www.cs.cmu.edu/~dst/Adobe/Gallery/ds-defcon2/ds-defcon.html

Well,that's all...just make sure you read the aformentioned paper,in order to be able to understand how to use pdfcrack...

...however is possible based in the .pdf generate discover what tool were used to generate it?

So the use of Rainbow Tables can't help in discover the key?

Nope...rainbow tables are irrelevant to pdf-cracking....

Regarding detecting the tool that generated it...Usually,most developers store their product's name into the .pdf 's metadata:in Adobe Reader,you just go to File-Properties-Description-'PDF Producer" section.But since it's encrypted...obviously you can't ;-)Maybe you could use pdfinfo from the xpdf package to extract this info?hxxp://www.foolabs.com/xpdf/download.htmlAlso,you could give a try with this one,it's a gui-based .pdf metadata viewer/editor,(although I really doubt this would work without providing a password first):hxxp://www.becyhome.de/becypdfmetaedit/description_eng.htmAs a last resort,just fire-up a "strings" utility...

In any case,discovering the tool that built this .pdf,would certainly help in understanding what is that we have to deal with,but I can't see a way(a "direct" way,at least),in which it would assist on speeding-up the bruteforcing process...

As for PDF version 1.6...this means the file in question can't be opened/displayed correctly in older pdf viewers...you'll need at least Adobe Reader 7 to use it.As for Length 128...this is obviously the number of the RC4 encryption bits....

Conclusion(in short):Use all alphanumeric strings in pdfcrack(or Elcomsoft),and be patient...

"Maybe not today,maybe not tomorrow...but soon-and for the rest of your life"

Try one the best free PDF Password Cracker Online tool to unprotected PDF protected files, that are imposed with owner password security. To decrypt PDF file and to open protected PDF files SysTools for PDF Unlocker helps you with 100% effective result and enables users to copy/edit/print/extract data from PDF documents.